What is CVE-2026-65705?
CVE-2026-65705 is an out-of-bounds write vulnerability in the vf_floodfill video filter of FFmpeg versions 3.4 through 8.1.2, allowing attackers to corrupt heap memory using a dynamically sized video stream with filtergraph reinitialization disabled (-reinit_filter 0). Users should update FFmpeg to the latest patched version.
Azərbaycanca: CVE-2026-65705, FFmpeg-in 3.4-dən 8.1.2-yə qədər olan versiyalarında `vf_floodfill` video filtrində aşkar edilmiş heap yaddaşını pozmağa imkan verən out-of-bounds write zəifliyidir. Zəiflik `-reinit_filter 0` parametrindən istifadə edildikdə dinamik ölçülü video axını vasitəsilə istismar oluna bilər. İstifadəçilərə FFmpeg-i ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-787
FAQ2
Which versions of FFmpeg are affected by CVE-2026-65705?
This vulnerability affects FFmpeg versions 3.4 through 8.1.2.
What should users do to protect against CVE-2026-65705?
Users should update FFmpeg to the latest patched version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.